
Trespasser
CVE-2026-74970 · Fission site isolation bypass in Firefox WebRender

CVE-2026-74970 · Fission site isolation bypass in Firefox WebRender
An explanation and PoC to exploit CVE-2026-25938 Unauthenticated RCE Vulnerability on FUXA

Burp Plugin to Bypass WAFs through the insertion of Junk Data

Fuzzing Framework for Modules in Apache HTTPD Server

pluck CMS 4.7.18 is affected by a Multiple Stored Cross-Site Scripting (XSS) vulnerability that allows attackers to execute arbitrary code via a…

A cheatsheet for exploiting server-side SVG processors.

Security Advisory: Unchecked Room Lookup Leads to Server Crash (Let's Chat)

Rapid Assessment of Web Resources

Like curl, but it gets past Anubis and Cloudflare bot-walls.

Advisory: CVE-2026-38361 multiple DoS vulnerabilities (CWE-400/CWE-670) in dash-uploader (Python/PyPI)


Evolution CMS 3.2.3 is affected by a Cross-Site Scripting (XSS) vulnerability that allows attackers to execute arbitrary code via a crafted payload…

CMSmadesimple 2.2.18 is affected by a Cross-Site Scripting (XSS) vulnerability that allows attackers to execute arbitrary code via a crafted payload…

Evolution CMS 3.2.3 is affected by a Cross-Site Scripting (XSS) vulnerability that allows attackers to execute arbitrary code via a crafted payload…

October CMS 3.4.16 is affected by a Cross-Site Scripting (XSS) vulnerability that allows attackers to execute arbitrary code via a crafted payload in…

Cross Site Scripting vulnerability in ConcreteCMS v.9.2.1 allows a local attacker to execute arbitrary code via a crafted script to the SITE from…

Exploit and detect tools for CVE-2020-0688

Python script to scan for CVE-2000-0114 vulnerability in Frontpage Server Extensions. Automates subdomain enumeration and vulnerability scanning…